← Back to browse · API

CVE-2022-44268

Severity
MEDIUM
CVSS
6.5
EPSS
0.89855
Risk score
57.45
CISA KEV
No
PoC
Yes
Published
2023-02-06
Modified
2025-03-26
First seen
2026-08-07
Aliases
EUVD-2022-47216, GHSA-G5QH-F5RV-GRCP
Products
n/a:n/a n/a
Sources
packetstorm 6809f9a288f8395889c67769|CVE-2022-44268
euvd EUVD-2022-47216
github 576b8d056cf0d9b0355c68ed|CVE-2022-44268

Description

ImageMagick 7.1.0-49 is vulnerable to Information Disclosure. When it parses a PNG image (e.g., for resize), the resulting image could have embedded the content of an arbitrary. file (if the magick binary has permissions to read it).

References